Fields: Add/Edit CAS Authentication Server

A Central Authentication Service (CAS) server provides single-sign-on for Portfolio and other connected systems. Organizations that have several systems that require authentication can allow users to log in to one service and then have access to all others without requiring authentication to each individually.

To set up CAS authentication in Portfolio, you must install CAS on a server and have SirsiDynix enable CAS authentication for your system. If you are running Portfolio without web services or are connecting to a Horizon ILS, you will need have SirsiDynix register CAS for Portfolio. If you are running Portfolio with Symphony Web Services, have SirsiDynix register CAS for Symphony. For more information, contact your SirsiDynix representative.

When using CAS for authenticating on a profile, set the profile to Authentication Required in the Security Options (for more information, see Fields: Add/Edit/Copy Profile. This helps Portfolio to run more smoothly and quickly when a patron logs in.

Security > Authentication Servers > Add CAS Authentication Server

Security > Authentication Servers > Edit Server

Entry Code

Specifies a unique code for the server (up to 30 characters). This code is used to identify the authentication server on the Authentication Servers page and on any other pages that display the authentication server code.

Codes are displayed in all upper case letters. If you enter lower case alphanumeric characters for the code, the software automatically converts them to upper case when the code is displayed. The Entry Code cannot include spaces. If you enter a space, Portfolio will display an error message when you save the settings.

Note: This value must be unique. If you enter a code that is already being used elsewhere on the system and try to save the authentication server, the software displays an error message indicating that the value must be unique, and informing you that the value you entered is already being used for another authentication server.

Name

Specifies the system name of the CAS authentication server (up to 80 characters) for the specified language. This name is used to identify the CAS server on the Authentication Servers page and in the Security Options area of the Add/Edit/Copy Profile page. For more information, see Fields: Add/Edit/Copy Profile.

For this field, you can also specify an alternate name for a specific language. Choose the language from the drop-down list of supported languages, then enter the localized name in the field.

Note: If your web browser is configured to use a display language that is not supported by Portfolio and you have chosen to display the Admin console in a language other than the default language (en_US), the language that displays in the drop-down list of supported languages defaults to US English.

If a localized name already exists for a specific language, the software displays that language name differently in the drop-down list. When you enter a localized name for a specific language, the language name appears with a “++” suffix. If you clear the localized name for a specific language, the software displays the language name without the different formatting.

CAS Server URL

Specifies the path to the CAS server, including the protocol (that is, "http" or "https"). If you are connecting to the CAS server using a web service, the URL must match the CAS URL entered in the web services administration console.

Web Services

Specifies which web service provides the connection to the CAS server, if any. "None" indicates that Portfolio will connect directly to a CAS server without going through a web service.

Note: If you select a Symphony Web Service, you must provide administrator login credentials as part of the setup.

Symphony Administrator Login

The Symphony Administrator Login fields are required only when you are using Symphony Web Services to connect with the CAS server. Symphony Web Services also also lets you manage access levels and accountability of assets.

Administrative Symphony Account ID

The Symphony account name that has rights to at least view accountability security. This must match the Symphony Administrative user defined in the oureg.cfg file in Symphony.

Administrative Symphony Account Password

The password for the Symphony account.

Note: After you have entered the passwords, when you edit the server, the password fields will be blank. The passwords are active, they are hidden to ensure that no clues are given for the length of the password.

Confirm Administrative Symphony Account Password

The password for the Symphony account entered again to ensure that the password has been entered correctly.

Note: After you have entered the passwords, when you edit the server, the password fields will be blank. The passwords are active, they are hidden to ensure that no clues are given for the length of the password.

Related topics